tequila bandita 1.3b2
(Backdoor.Win32.Banito.s for Client)
(Backdoor.Win32.Banito.cp for Server)

by stm

Written in Delphi

Released in July 2005

more versions


Changes in 1.3b2
Fixed:
- - injection server left a bat file behind
- - registry manager buffer overflow serverside (oops)
- - injection doesnt run when ran with certain firewalls
Changed:
- - file search results are sent as they are found, not all at once at the end
- - download queue gets subdir list as they come, not recursively all at once
- - new icon by mortimer
- - webdownloader no longer uses wininet api
- - moving guage shit replaced with busy/idle shit
Removed:
- - plugin system
Additions:
- - image spy built into server/client
- - images compressed with aplib
- - auto resume downloads
- - socks4

stm


Server:
dropped file:
c:\WINDOWS\winhost32.exe
size: 24,576 bytes 

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\ActiveX Key "StubPath"
data: C:\WINDOWS\winhost32.exe
	
	
tested on Windows XP
July 10, 2005

MegaSecurity